flaskr.py 6.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251
  1. """
  2. Simple flask thing
  3. """
  4. import random
  5. import string
  6. from datetime import datetime
  7. from flask import render_template, request, redirect, \
  8. flash, url_for, abort, json
  9. from flask_breadcrumbs import Breadcrumbs, register_breadcrumb
  10. from flask_menu import Menu, register_menu
  11. from flask_login import login_required, login_user, logout_user
  12. from app import app, login_manager, db, rrclient, alt_rrclient
  13. from app.models import User, Log, Key
  14. Menu(app=app)
  15. Breadcrumbs(app=app)
  16. @register_breadcrumb(app, '.login', 'Login')
  17. @app.route("/login", methods=["GET", "POST"])
  18. def login():
  19. """Handle login page and data"""
  20. if request.method == 'POST':
  21. email = request.form['email']
  22. password = request.form['password']
  23. user = User.query.filter(User.email == email).first()
  24. if user:
  25. if user.check_password(password):
  26. login_user(user, remember=True)
  27. flash('Successfully loggend in.', 'success')
  28. if request.args.get("next"):
  29. return redirect(request.args.get('next'))
  30. return redirect(url_for('index'))
  31. flash('Password Incorrect.', 'warning')
  32. return render_template('site/login.html', login_email=email)
  33. flash('Email not found.', 'warning')
  34. return render_template('site/login.html')
  35. @app.route("/register", methods=["POST"])
  36. def register():
  37. """Register a new user"""
  38. name = request.form['name'] if 'name' in request.form else None
  39. email = request.form['email'] if 'email' in request.form else None
  40. password = request.form['password'] if 'email' in request.form else None
  41. if name is None:
  42. flash('Fill in the name.', 'warning')
  43. return render_template('login.j2')
  44. if email is None:
  45. flash('Fill in the email.', 'warning')
  46. return render_template(
  47. 'login.j2',
  48. name=name
  49. )
  50. if password is None:
  51. flash('Fill in the password.', 'warning')
  52. return render_template(
  53. 'login.j2',
  54. name=name,
  55. email=email
  56. )
  57. user = User.query.filter(User.email == email).first()
  58. if user is not None:
  59. flash('Email already taken.', 'warning')
  60. return render_template(
  61. 'login.j2',
  62. name=name,
  63. )
  64. user = User()
  65. user.name = name
  66. user.email = email
  67. user.password = password
  68. db.session.add(user)
  69. db.session.commit()
  70. login_user(user)
  71. flash('Successfully registered account "%s".' % (user.name), 'success')
  72. if request.args.get("next") is not None:
  73. return redirect(request.args.get("next"))
  74. else:
  75. return redirect(url_for('index'))
  76. @app.route("/logout")
  77. @login_required
  78. def logout():
  79. """Logout function for users"""
  80. logout_user()
  81. flash('succesfully logged out', 'success')
  82. return redirect(url_for('login'))
  83. @app.route('/')
  84. @register_menu(app, '.', 'Home')
  85. @register_breadcrumb(app, '.', 'Home')
  86. def index():
  87. """Show homepage"""
  88. # users = User.query.count()
  89. return render_template('site/index.html')
  90. # return render_template('site/index.html', users=users)
  91. @app.route('/users')
  92. @register_menu(app, 'users', 'Users')
  93. @register_breadcrumb(app, '.users', 'Users')
  94. @login_required
  95. def user_index():
  96. """Show users"""
  97. users = User.query.all()
  98. return render_template('user/index.html', users=users)
  99. def user_overview_dlc(*args, **kwargs):
  100. """Generate dynamic_list for user"""
  101. id = request.view_args['id']
  102. user = User.query.get(id)
  103. return [{'text': user.email, 'url': user.name}]
  104. @app.route('/user/<int:id>')
  105. @register_breadcrumb(app, '.users.id', '',
  106. dynamic_list_constructor=user_overview_dlc)
  107. @login_required
  108. def user_overview(id):
  109. """Show user overview"""
  110. id = int(id)
  111. user = User.query.get(id)
  112. return render_template('user/overview.html', user=user)
  113. @app.route('/user/<int:id>/generate_key')
  114. @login_required
  115. def user_generate_key(id):
  116. """Generate new key for user"""
  117. user = User.query.get(id)
  118. key = Key()
  119. key.key = ''.join(random.choices(
  120. string.ascii_letters + string.digits, k=64
  121. ))
  122. key.user_id = user.id
  123. db.session.add(key)
  124. db.session.commit()
  125. flash('Succesfully generated key', 'success')
  126. return redirect(url_for('user_overview', id=user.id))
  127. @app.route('/user/<int:user_id>/key/<int:key_id>/activate')
  128. @login_required
  129. def user_toogle_key(user_id, key_id):
  130. """Activate key"""
  131. user = User.query.get(user_id)
  132. key = Key.query.get(key_id)
  133. key.active = not key.active
  134. db.session.add(key)
  135. db.session.commit()
  136. if key.active:
  137. flash('Activated key', 'success')
  138. else:
  139. flash('Deactivated key', 'success')
  140. return redirect(url_for('user_overview', id=user.id))
  141. @app.route('/api/authenticated', methods=["POST"])
  142. def api_authenticated():
  143. """Check key"""
  144. if 'Authorization' not in request.headers:
  145. return abort(403)
  146. authorization = request.headers['authorization']
  147. key = Key.query.filter(Key.key == authorization).count()
  148. if key:
  149. return json.dumps(True)
  150. return json.dumps(False)
  151. @app.route('/api/request/<path:url_path>', methods=["GET"])
  152. def api_get(url_path):
  153. """Check key"""
  154. if 'Authorization' not in request.headers:
  155. return abort(403)
  156. authorization = request.headers['authorization']
  157. key = Key.query.filter(Key.key == authorization).first()
  158. if not key or not key.active:
  159. return abort(403)
  160. log = Log()
  161. log.date_time = datetime.now()
  162. log.key_id = key.id
  163. log.request_type = 'GET'
  164. log.request_url = url_path
  165. db.session.add(log)
  166. db.session.commit()
  167. alt = request.args.get('alt')
  168. if alt:
  169. result = alt_rrclient.get(url_path)
  170. else:
  171. result = rrclient.get(url_path)
  172. log.succes = True
  173. db.session.commit()
  174. return result
  175. @app.route('/api/request/<path:url_path>', methods=["POST"])
  176. def api_post(url_path):
  177. """Check key"""
  178. if 'Authorization' not in request.headers:
  179. return abort(403)
  180. authorization = request.headers['authorization']
  181. key = Key.query.filter(Key.key == authorization).first()
  182. if not key or not key.active:
  183. return abort(403)
  184. log = Log()
  185. log.date_time = datetime.now()
  186. log.key_id = key.id
  187. log.request_type = 'POST'
  188. log.request_url = url_path
  189. db.session.add(log)
  190. db.session.commit()
  191. if request.json:
  192. data = request.json
  193. else:
  194. data = {}
  195. alt = request.args.get('alt')
  196. if alt:
  197. result = alt_rrclient.post(url_path, data=data)
  198. else:
  199. result = rrclient.post(url_path, data=data)
  200. log.succes = True
  201. db.session.commit()
  202. return result